http://www.k-otik.com/exploits/09252...gOfDeath.c.php

The creator of this tool says that it requires someone to download a jpeg and view it in explorer, when I was led to believe that IE itself was vulnerable. (aren't they supposed to be the same anyway)

Couldn't someone upload that JPEG above as an avatar or signature, and wreck havoc upon the unpatched users of this forum?